Can DD-WRT filter traffic by L7 rules?

Discussion in 'DD-WRT Firmware' started by Dragon2611, May 24, 2008.

  1. Dragon2611

    Dragon2611 LI Guru Member

    I'm using tomato at the moment, But its L7 Rules can only be set to block matches it seems. Problem is some P2p software uses encryption.etc to get around an L7 filter or simply there Doesn't exist an L7/I2pp rule for that client. (Frostwire for instance still appears to connect even if Gnutella is blocked via an L7 rule)

    Blocking ports would work but it Breaks the Webcam feature of MSN which seems to pick ports at random (How usefull :rolleyes:)

    Since L7 filters exist for HTTP, MSN, Email.etc I was wandering if DD-WRT can set to Allow traffic that Matches the L7 rule and deny everything else for a particular machine.

    I have a WRT54GL
  2. LLigetfa

    LLigetfa LI Guru Member

    Don't wander too far off. :p

    L7 will never work for encrypted traffic because it cannot inspect the packet contents. You need to control P2P by limiting traffic and sessions, not just L7 filters.
  3. Dragon2611

    Dragon2611 LI Guru Member

    Yes but L7 filters exist for HTTP MSN and MSN filetransfer. and most of the other things I actually want to allow for this machine... So if I could set it to ALLOW traffic though that matches those L7 rules and block everything else :wink:

    EDIT: Tried DD-WRT decided I like Tomato much better :wink:
